Soru

Zorluk: OrtaAppExchange Ecosystem and Packages for Productivity Enhancements

A logistics company recently installed a Salesforce Labs productivity package from the AppExchange to manage internal delivery audit tasks. The Salesforce administrator needs to grant read and edit permissions for the package's custom objects to a specific group of ten operations coordinators without modifying access for other users who share the same profile. Which administrative action should be taken to meet this requirement?

  1. Create a permission set with read and edit access to the package custom objects and assign it to the ten operations coordinators.Cevap
  2. B
    Create a new custom profile containing the package permissions and reassign the ten operations coordinators to this profile.
  3. C
    Modify the base user profile to include package object permissions and restrict visibility for all other users using Organization-Wide Defaults.
  4. D
    Freeze the ten operations coordinator user accounts while updating org-wide object permissions to ensure secure package configuration.

Cevap

Create a permission set with read and edit access to the package custom objects and assign it to the ten operations coordinators.
The correct option creates a permission set with read and edit access for the package custom objects and assigns it directly to the designated users. Permission sets are designed to grant additive permissions to specific users on top of their existing profiles without altering baseline profile settings or affecting other users assigned to those profiles.

Adım Adım Çözüm

1
Identify the target user access requirement
Ten specific operations coordinators need extra permissions to access newly installed AppExchange custom objects.
Only a subset of users sharing a profile require access, while others sharing the profile should not be affected.
2
Evaluate permission assignment mechanisms in Salesforce
Permission sets grant additive object and field permissions to selected individual users independent of their base profile.
Modifying or creating profiles for small subsets of users creates administrative overhead and violates least privilege best practices.
3
Select and assign the appropriate security control
Create a permission set with the required package object permissions and assign it directly to the ten coordinators.
This grants the exact access required without changing base profiles or impacting other users.

Anahtar Kavram

AppExchange Package Access Delegation via Permission Sets
Tahmini Süre:1m 15s
Bu soruyu puanla